Логотип exploitDog
bind:CVE-2023-25953
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-25953

Количество 3

Количество 3

nvd логотип

CVE-2023-25953

больше 2 лет назад

Code injection vulnerability in Drive Explorer for macOS versions 3.5.4 and earlier allows an attacker who can login to the client where the affected product is installed to inject arbitrary code while processing the product execution. Since a full disk access privilege is required to execute LINE WORKS Drive Explorer, the attacker may be able to read and/or write to arbitrary files without the access privileges.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2xvg-5jxp-pccg

больше 2 лет назад

Code injection vulnerability in Drive Explorer for macOS versions 3.5.4 and earlier allows an attacker who can login to the client where the affected product is installed to inject arbitrary code while processing the product execution. Since a full disk access privilege is required to execute LINE WORKS Drive Explorer, the attacker may be able to read and/or write to arbitrary files without the access privileges.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2023-02889

почти 3 года назад

Уязвимость проводника диска Drive Explorer для macOS, связанная с неверным управлением генерацией кода, позволяющая нарушителю выполнить произвольный код

CVSS3: 9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-25953

Code injection vulnerability in Drive Explorer for macOS versions 3.5.4 and earlier allows an attacker who can login to the client where the affected product is installed to inject arbitrary code while processing the product execution. Since a full disk access privilege is required to execute LINE WORKS Drive Explorer, the attacker may be able to read and/or write to arbitrary files without the access privileges.

CVSS3: 9.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2xvg-5jxp-pccg

Code injection vulnerability in Drive Explorer for macOS versions 3.5.4 and earlier allows an attacker who can login to the client where the affected product is installed to inject arbitrary code while processing the product execution. Since a full disk access privilege is required to execute LINE WORKS Drive Explorer, the attacker may be able to read and/or write to arbitrary files without the access privileges.

CVSS3: 9.8
0%
Низкий
больше 2 лет назад
fstec логотип
BDU:2023-02889

Уязвимость проводника диска Drive Explorer для macOS, связанная с неверным управлением генерацией кода, позволяющая нарушителю выполнить произвольный код

CVSS3: 9
0%
Низкий
почти 3 года назад

Уязвимостей на страницу